CVE-2007-0217: Critical severity Microsoft Windows 2000 vulnerability
The wininet.dll FTP client code in Microsoft Internet Explorer 5.01 and 6 might allow remote attackers to execute arbitrary code via an FTP server response of a specific length that causes a terminating null byte to be written outside of a buffer, which causes heap corruption.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-0217?
CVE-2007-0217 is classified as critical due to the potential for remote code execution.
How do I fix CVE-2007-0217?
To fix CVE-2007-0217, update Microsoft Internet Explorer to the latest security patches provided by Microsoft.
Which versions of Internet Explorer are affected by CVE-2007-0217?
CVE-2007-0217 affects Internet Explorer versions 5.01 and 6.0.
Is Microsoft Windows 2000 vulnerable to CVE-2007-0217?
No, Microsoft Windows 2000 with service pack 4 is not vulnerable to CVE-2007-0217.
What type of attack does CVE-2007-0217 enable?
CVE-2007-0217 enables remote attackers to execute arbitrary code by exploiting a vulnerability in the FTP client of Internet Explorer.